Назад
Company hidden
9 часов назад

Technical GRC Analyst (Compliance & Assurance)

50 000 - 60 000$
Формат работы
remote (только Brazil)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Brazil
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Technical GRC Analyst (Compliance & Assurance) (AI governance and cybersecurity): Evaluating technical controls, validating evidence, and performing risk assessments across Security, Engineering, Product, and business teams with an accent on AI governance, technical assurance, and compliance automation. Focus on aligning controls with compliance requirements, supporting ISO 42001 activities, developing program metrics, and improving audit and customer assurance processes.

Location: Brazil; remote

Salary: $50K–$60K per year

Company

hirify.global is a startup building a modern compliance and assurance program for a technology organization.

What you will do

  • Evaluate the design and operating effectiveness of technical controls and validate supporting evidence.
  • Perform technical risk assessments for new technologies, systems, and business initiatives.
  • Partner with Security, Engineering, Product, and business teams to align controls with compliance requirements and industry practices.
  • Support AI governance through policies, acceptable-use standards, risk assessments, vendor evaluations, and security controls aligned with ISO 42001.
  • Turn compliance data into dashboards, metrics, and insights for business and leadership decisions.
  • Improve compliance automation and support internal assessments, customer due diligence, and external audits.

Requirements

  • 8+ years of experience in technical security, Security GRC, regulatory compliance, or a related discipline.
  • Experience evaluating technical controls, validating evidence, and performing technical risk assessments.
  • Experience working with cross-functional teams in modern cloud and enterprise technology environments.
  • Working knowledge of cloud and security architecture, vulnerability and risk management, secure software development, DevSecOps, data protection, and encryption.
  • Working knowledge of AI governance, emerging technologies, dashboard development, reporting, analytics, or automation.

Nice to have

  • Experience with FedRAMP authorization activities, including NIST 800-53 control implementation, SSP development, evidence collection, POA&M management, or readiness assessments.

Culture & Benefits

  • Remote contract role based in Brazil.
  • Fast-paced startup environment.
  • Opportunity to improve compliance processes and build scalable assurance capabilities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →